Johann Savio Pimenta

Associate Consultant

Toronto, Ontario, Canada1 yr 3 mos experience
AI Enabled

Key Highlights

  • Expert in Azure cloud security and compliance frameworks.
  • Proven track record in risk management for Fortune 500 clients.
  • Strong leadership in cross-functional project collaboration.
Stackforce AI infers this person is a Cloud Security and Compliance Specialist with a focus on Azure solutions.

Contact

Skills

Core Skills

Cloud SecurityGovernance, Risk Management, And Compliance (grc)Network Operations

Other Skills

Compliance AssessmentsMicrosoft DefenderGeneral Data Protection Regulation (GDPR)Risk Management FrameworkWritten CommunicationFirewallsAssessmentPolicies & ProceduresPrivacy PoliciesThreat AssessmentCyber Risk ManagementInformation SecurityAnalytical SkillsPrivacy RegulationsGeneral Controls

About

United States and Canadian Work Experience Highly skilled Senior Azure Cloud Security and Information Security Specialist with experience delivering robust security solutions for Fortune 500 clients. Expertise in Azure cloud network and security (VPC, Routing, Firewall, DNS, IAM, Azure AD), network design and security controls, monitoring & logging, as well as various cloud service models (IaaS, SaaS, PaaS). Proven ability to assess and mitigate risks, ensure regulatory compliance (NIST 800-53, US DoD), and collaborate with stakeholders to implement effective security strategies. Azure Cloud Expertise: • Security: Deep understanding of Azure cloud security, encompassing identity and access management (IAM, Azure AD, SSO, MFA), network design and security controls, monitoring and logging. Experience assessing and enhancing security controls for critical Azure services, including Active Directory, Virtual Machines, Storage, Encryption, Disaster Recovery, Backup services, Security Monitoring (Azure Monitor, Defender, Sentinel), and Threat Protection. • Service Models: Strong grasp of IaaS, SaaS, and PaaS cloud service delivery models and their security implications. • Governance & Compliance: Extensive experience leading cloud security, regulatory compliance, and governance initiatives, adhering to NIST 800-53, US DoD standards, and other relevant frameworks (NIST SP 500-291, SP 800-144, SP 800-210, PCI-DSS, STIGs). Proven ability to mitigate risks and ensure adherence to industry best practices. Additional Skills: • Policy & Standards Development: Define and maintain robust configuration management standards and governance frameworks for cloud network and security operations. • Project Leadership & Technical Innovation: Drive project success by defining priorities, coordinating with diverse teams, and spearheading continuous improvement efforts for security tools, systems, and processes.

Experience

1 yr 3 mos
Total Experience
1 yr 3 mos
Average Tenure
--
Current Experience

Royal canadian mounted police | gendarmerie royale du canada

Confidential Role - Hourly Contractor

Nov 2022Mar 2024 · 1 yr 4 mos · Ottawa, Ontario, Canada · Remote

  • Confidential as this role required Enhanced Security Clearance

Td

Consultant/Information Security Specialist, Cloud Security, Cyber and Technology Risk

Oct 2020Present · 5 yrs 7 mos · Toronto, Ontario, Canada · Hybrid

  • My role is a Consultant Information Security Specialist with TD Bank to assess their IT Infrastructure and Cloud security posture.
  • Azure Cloud:
  • Azure Cloud Network & Security Posture: Conduct rigorous evaluations of security controls within Azure cloud environments for VPC design, routing protocols, firewall configurations, VPN architectures, IP address management, DNS infrastructure, disaster recovery strategies, VPC peering, and ingress/egress traffic controls.
  • Azure Service Security: Assess security controls for critical Azure services, including Active Directory, IAM, Virtual Machines, Storage, Encryption, Disaster Recovery, Backup services, Security Monitoring, Threat Protection, Azure Monitor, Defender, and Sentinel
  • Cloud Audit, Risk Management & Compliance:
  • Oversight & Governance: Lead and execute comprehensive oversight, governance, and compliance initiatives for the Azure Cloud team.
  • Regulatory Compliance: Ensure cloud security controls align with compliance standards, including TD Bank's internal security controls, NIST frameworks (NIST SP 500-291, SP 800-53, SP 800-144, SP 800-210), PCI-DSS, STIGs, and US DoD requirements.
  • Stakeholder Engagement: Effectively communicate with stakeholders throughout the audit process, providing clear explanations of audit scope, identified risks and emerging issues.
  • Documentation & Governance: Develop, update, and maintain a robust library of Azure cloud security standards, regulations, policies, procedures, and governance documentation
  • Project Leadership
  • Cross-Functional Collaboration: Collaborate effectively with diverse teams, including developers, engineers, product managers, technical support, and other stakeholders, to establish accurate project timelines, task assignments, and prioritization frameworks.
  • AI and Privacy Standards Research:
  • Research NIST standards for advancement in trustworthy AI technologies and Privacy framework.
Compliance AssessmentsMicrosoft DefenderGeneral Data Protection Regulation (GDPR)Risk Management FrameworkWritten CommunicationFirewalls+34

Informatica

Consultant - Senior Technical Analyst

May 2018Oct 2020 · 2 yrs 5 mos · Greater Toronto Area, Canada

  • Accomplished Consultant - Senior Technical Analyst specializing in Azure Cloud MDM and Master Data Management. Proven track record in enhancing Azure MDM cloud security posture through rigorous assessments and risk mitigation strategies. Expertise in regulatory compliance, governance frameworks, and ITIL processes. Consistently deliver high-quality technical documentation, ensuring successful implementation and adoption of cloud solutions. Collaborative team player with strong communication and technical skills.
Compliance AssessmentsWritten CommunicationAnalytical SkillsCommunicationGovernanceRisk Management, and Compliance (GRC)+8

Talentnet

Contractor - Lead Technical Analyst

Jun 2017May 2018 · 11 mos · Toronto, Canada Area

  • Lead Technical Analyst with expertise in talent management applications, particularly focused on data architecture and quality for recruitment optimization.
  • Key skills and experience:
  • Production Support: Coordinated support for web infrastructure and applications to ensure system integrity.
  • Technical Tasks: Developed and maintained technical components using relevant technologies.
  • Cloud Administration: Administered, troubleshooted, and resolved issues for web applications on Azure and AWS.
  • Technical Documentation: Created API references, developer guides, SDKs, architecture guides, user guides, configuration/deployment guides, release notes, and diagrams for AWS cloud solutions.
Compliance AssessmentsWritten CommunicationPolicies & ProceduresAnalytical SkillsCommunicationGovernance+6

Giesecke+devrient

Contract Consultant - Senior Technical Analyst

Jun 2016May 2017 · 11 mos · Toronto, Canada Area · On-site

  • Experienced Senior Technical Network Analyst specializing in IT infrastructure management, operations, maintenance, and security within Network Operations (NOC) teams. Demonstrated expertise in:
  • Network Design & Optimization: Analyzing infrastructure requirements, implementing configuration changes, and collaborating with stakeholders to meet business needs and optimize network performance.
  • Technical Documentation: Creating comprehensive technical assets, including user manuals, network design documents, configurations, routing protocols, troubleshooting guides, and standard operating procedures.
  • Visual Diagrams: Developing detailed Layer 1-3 rack layouts, network diagrams, routing protocol diagrams, Wi-Fi diagrams, topology maps, and data center diagrams.
  • Policy Development: Creating network backup/recovery, disaster recovery/business continuity (BCP), and IT regulatory compliance (ISO 27001) policies.
  • Technical Record Keeping: Maintaining detailed records of IP addresses, routing/security protocols, server information, network monitoring, hardware components, application dependencies, SLAs, asset tracking, and inventory.
  • ITIL Knowledge Base: Developing and documenting asset management policies, RACI matrices, OLAs, SLAs, and ITIL processes (Incident, Release, Service Management).
Compliance AssessmentsPolicies & ProceduresNetwork Operations Center (NOC)Technical AnalysisTechnical DocumentationData Centers+2

Amerisourcebergen

Information Technology Consultant (TCS Contract)

Feb 2011Apr 2016 · 5 yrs 2 mos · Charlotte, North Carolina, USA · On-site

  • Lead Technical Analyst with extensive experience managing Network Operations (NOC) teams and collaborating with cross-functional technical teams to define and implement network security architectures. Proven ability to:
  • Lead Technical Teams: Supervise and mentor Technical Analysts.
  • Collaborate Cross-Functionally: Partner with engineers, analysts, and specialists to develop secure network solutions.
  • Facilitate Software Testing: Assist in system, unit, acceptance, regression, load, and functional/performance testing.
  • Develop Technical Documentation: Create instructional manuals, user guides, requirements specifications, test plans, and other documentation.
  • Establish Operational Procedures: Develop standard operating procedures, policies, and disaster recovery/business continuity plans.
  • Design Network Infrastructure: Create data center designs, enterprise architectures, data flows, and network diagrams.
  • Manage SDLC: Lead and document all phases of the Software Development Life Cycle.
Written CommunicationCommunicationMultitasking

Microsoft

Information Technology Consultant (TCS Contract)

Feb 2010Jan 2011 · 11 mos · Redmond, Washington State, USA · On-site

  • Lead Technical Analyst with proven experience in identifying and implementing network configuration changes to meet evolving business needs. Collaborated effectively with stakeholders to streamline processes, optimize network operations, and enhance user experience.
Network AdministrationService DeskRequirements GatheringITILTechnical Analysis

Tata consultancy services

Information Technology Manager

Apr 2006May 2016 · 10 yrs 1 mo · Charlotte, North Carolina, United States · On-site

  • Employed with Tata Consultancy Services (TCS), serving in various consulting roles for major clients including AmerisourceBergen, Microsoft, and General Electric.
Written CommunicationAnalytical SkillsCommunicationMultitasking

Ibruk consulting pvt ltd

Technical Writing Consultant

May 2005Apr 2006 · 11 mos

  • Technical Writing Specialist for Citibank (client) software application project.
Written CommunicationCommunicationMultitasking

Education

Southern New Hampshire University

Master of Science - MS — Computer Software Engineering

Stackforce found 100+ more professionals with Cloud Security & Governance, Risk Management, And Compliance (grc)

Explore similar profiles based on matching skills and experience